Re: [squid-users] how to avoid use http/1.0 between squid and the target

2023-11-27 Thread David Komanek
On 11/27/23 11:36, Amos Jeffries wrote: On 27/11/23 23:05, David Komanek wrote: On 11/27/23 10:40, Amos Jeffries wrote: On 27/11/23 22:21, David Komanek wrote: here are the debug logs (IP addresses redacted) after connection attempt to https://samba.org/ : ... 2023/11/27 09:58:07.370

Re: [squid-users] Intercepted connections are not bumped

2023-11-27 Thread Andrea Venturoli
On 11/27/23 11:11, Amos Jeffries wrote: First off, thanks for answering. For further assistance please also show your http_access and ACL config lines. They will be needed for a better analysis of what is going on. I'll start from here. It's quite long, but a reduced example is: acl

Re: [squid-users] how to avoid use http/1.0 between squid and the target

2023-11-27 Thread David Komanek
On 11/27/23 11:36, Amos Jeffries wrote: On 27/11/23 23:05, David Komanek wrote: On 11/27/23 10:40, Amos Jeffries wrote: On 27/11/23 22:21, David Komanek wrote: here are the debug logs (IP addresses redacted) after connection attempt to https://samba.org/ : ... 2023/11/27 09:58:07.370

Re: [squid-users] how to avoid use http/1.0 between squid and the target

2023-11-27 Thread Amos Jeffries
On 27/11/23 23:05, David Komanek wrote: On 11/27/23 10:40, Amos Jeffries wrote: On 27/11/23 22:21, David Komanek wrote: here are the debug logs (IP addresses redacted) after connection attempt to https://samba.org/ : ... 2023/11/27 09:58:07.370 kid1| 11,2| Stream.cc(274)

Re: [squid-users] Https from sibling peers does not work

2023-11-27 Thread Amos Jeffries
On 27/11/23 22:38, Mihkel Tammepuu wrote: Hello! I am trying to set up a sibling cluster of 4 Squid instances. The purpose of the cluster is redundancy AND sharing cache disk space. FWIW, if these are running on the same machine you may find SMP workers with rock type cache_dir easier to

Re: [squid-users] Intercepted connections are not bumped

2023-11-27 Thread Amos Jeffries
On 23/11/23 23:05, Andrea Venturoli wrote: Hello. I've got the following config: ... http_port 8080 ssl-bump cert=/usr/local/etc/squid/proxyCA.pem generate-host-certificates=on dynamic_cert_mem_cache_size=4MB https_port 3129 intercept ssl-bump cert=/usr/local/etc/squid/proxyCA.pem

Re: [squid-users] how to avoid use http/1.0 between squid and the target

2023-11-27 Thread David Komanek
On 11/27/23 10:40, Amos Jeffries wrote: On 27/11/23 22:21, David Komanek wrote: here are the debug logs (IP addresses redacted) after connection attempt to https://samba.org/ : ... 2023/11/27 09:58:07.370 kid1| 11,2| Stream.cc(274) sendStartOfMessage: HTTP Client REPLY: - HTTP/1.1

Re: [squid-users] how to avoid use http/1.0 between squid and the target

2023-11-27 Thread Amos Jeffries
On 27/11/23 22:21, David Komanek wrote: here are the debug logs (IP addresses redacted) after connection attempt to https://samba.org/ : ... 2023/11/27 09:58:07.370 kid1| 11,2| Stream.cc(274) sendStartOfMessage: HTTP Client REPLY: - HTTP/1.1 400 Bad Request Server: squid/6.5

[squid-users] Https from sibling peers does not work

2023-11-27 Thread Mihkel Tammepuu
Hello! I am trying to set up a sibling cluster of 4 Squid instances. The purpose of the cluster is redundancy AND sharing cache disk space. Everything seems to work fine with http, but with https I cannot see requests being forwarded to siblings. Interestingly, when using HTCP, the siblings do

Re: [squid-users] how to avoid use http/1.0 between squid and the target

2023-11-27 Thread David Komanek
Date: Thu, 23 Nov 2023 01:44:30 +1300 From: Amos Jeffries To: squid-users@lists.squid-cache.org Subject: Re: [squid-users] how to avoid use http/1.0 between squid and the target Message-ID: Content-Type: text/plain; charset=UTF-8; format=flowed On 22/11/23 23:03, David Komanek wrote: